cbcvebase.
CVE-2018-1000152
published 2018-04-05

CVE-2018-1000152: An improper authorization vulnerability exists in Jenkins vSphere Plugin 2.16 and older in Clone.java, CloudSelectorParameter.java, ConvertToTemplate.java…

PriorityP335medium6.3CVSS 3.0
AVNACLPRLUINSUCLILAL
EPSS
0.70%
48.9th percentile
An improper authorization vulnerability exists in Jenkins vSphere Plugin 2.16 and older in Clone.java, CloudSelectorParameter.java, ConvertToTemplate.java, ConvertToVm.java, Delete.java, DeleteSnapshot.java, Deploy.java, ExposeGuestInfo.java, FolderVSphereCloudProperty.java, PowerOff.java, PowerOn.java, Reconfigure.java, Rename.java, RenameSnapshot.java, RevertToSnapshot.java, SuspendVm.java, TakeSnapshot.java, VSphereBuildStepContainer.java, vSphereCloudProvisionedSlave.java, vSphereCloudSlave.java, vSphereCloudSlaveTemplate.java, VSphereConnectionConfig.java, vSphereStep.java that allows attackers to perform form validation related actions, including sending numerous requests to the configured vSphere server, potentially resulting in denial of service, or send credentials stored in Jenkins with known ID to an attacker-specified server ("test connection").

Affected

12 ranges
VendorProductVersion rangeFixed in
jenkinsansible_plugin
jenkinsbuilds_started_before_the_plugin
jenkinscopy_to_slave_plugin
jenkinscucumber_living_documentation_plugin
jenkinsgithub_pull_request_builder_plugin
jenkinsliquibase_runner_plugin
jenkinsmailer_plugin
jenkinsp4_plugin
jenkinsperforce_plugin
jenkinsreverse_proxy_auth_plugin
jenkinsvsphere<= 2.16
jenkinswe_recommend_that_users_of_perforce_plugin

CVSS provenance

nvdv3.06.3MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.